--- # yaml-language-server: $schema=https://kubernetes-schemas.pages.dev/external-secrets.io/externalsecret_v1.json apiVersion: external-secrets.io/v1 kind: ExternalSecret metadata: name: vikunja spec: secretStoreRef: kind: ClusterSecretStore name: onepassword-connect target: name: vikunja-secret template: engineVersion: v2 data: VIKUNJA_SERVICE_JWTSECRET: "{{ .VIKUNJA_SERVICE_JWTSECRET }}" dataFrom: - extract: key: vikunja --- # yaml-language-server: $schema=https://kubernetes-schemas.pages.dev/external-secrets.io/externalsecret_v1.json apiVersion: external-secrets.io/v1 kind: ExternalSecret metadata: name: vikunja-db spec: secretStoreRef: kind: ClusterSecretStore name: crunchy-pgo-secrets target: name: vikunja-db-secret template: engineVersion: v2 data: VIKUNJA_DATABASE_TYPE: postgres VIKUNJA_DATABASE_SSLMODE: require VIKUNJA_DATABASE_HOST: '{{ index . "host" }}' VIKUNJA_DATABASE_DATABASE: '{{ index . "dbname" }}' VIKUNJA_DATABASE_USER: '{{ index . "user" }}' VIKUNJA_DATABASE_PASSWORD: '{{ index . "password" }}' dataFrom: - extract: key: postgres-pguser-vikunja